

One Identity Manager and ForgeRock are two prominent products competing in the identity and access management category. Based on feature richness, customization, and flexibility, One Identity Manager appears to have an upper hand. However, ForgeRock stands out in security and seamless third-party integration, making it a preferred choice for organizations prioritizing these aspects.
Features: One Identity Manager is renowned for its robust logical schema naming, flexible reporting, and extensive customization abilities, offering a clean graphical user interface and easy configuration. It includes strong out-of-the-box connectors for platforms like SAP, LDAP, and MS Active Directory. Conversely, ForgeRock excels in comprehensive security features, intelligent authentication, and easy adaptation to multiple environments. Its integration capabilities with third-party applications ensure consistent operations.
Room for Improvement: One Identity Manager is criticized for complex synchronization, inadequate documentation, and challenging UI navigability. There are reported issues with configuration, cloud integration, and job server efficiency. ForgeRock faces challenges with its customization complexity and occasional instability due to its open-source background. It could benefit from enhancements in UI responsiveness and biometric and KYC integration.
Ease of Deployment and Customer Service: One Identity Manager supports on-premises, public, and hybrid cloud deployments, providing flexibility. It receives praise for comprehensive support, primarily through partners, although response times can be inconsistent. ForgeRock features simpler deployments across various environments compared to One Identity Manager, with a focus on direct and agile technical support.
Pricing and ROI: One Identity Manager is noted for competitive pricing and ROI improvements through automation and provisioning efficiencies, seen as cost-effective compared to solutions like SailPoint. ForgeRock offers value but is perceived as costly, despite having a free open-source version available. Both products deliver ROI by enhancing productivity and streamlining processes, with One Identity Manager often preferred for its attractive pricing model in enterprise settings.
On a B2B level, it opened up the market for TomTom to sell its services in a more efficient way to car companies.
We can use a Linux image from ForgeRock with different systems, applications, websites, and mobile apps to create various types of access for users.
I can definitely see that fewer employees are needed compared to using different SaaS applications.
Without it, we would need thousands of additional people.
Instead of spending on various systems, having one centralized system that handles all my organizational requirements helps save money.
Several users reported reduced onboarding and offboarding times by around 40% thanks to automated provisioning and de-provisioning.
The support portals offer comprehensive documentation, troubleshooting guides, and community forums that have been helpful for resolving common issues independently.
For standard support tickets, response times were very decent, and the support team was helpful in identifying configuration issues, especially with authentication trees, token settings, and directory replications.
The customer support is very flexible and supportive, particularly in the area of automation and customer deployments.
If you have outages or critical production problems, you can count on the manufacturer to help resolve the situation.
They should focus on bringing in technically skilled individuals who understand the tools and technologies involved.
Compared to my experiences with other tools, their support is exemplary.
The access management layer is stateless, so I can scale horizontally by adding more nodes behind a load balancer as traffic increases.
The platform provides flexible authentication trees, enabling us to design custom MFA flows tailored for different user groups and risk profiles.
We scaled up with ForgeRock. My team received an award for implementing it for a 60 million customer base, which was the largest implementation at that time.
It is architected so that key components can be scaled both horizontally and vertically to handle increasing loads from employee accounts to millions of external identities if needed.
Generally, if we need to add thousands of new users, we can ramp up container resources effectively.
We could handle about 1,00,000 records for different users.
ForgeRock supports integration with legacy systems in our organization by offering a wide range of connectors and APIs.
ForgeRock is very stable because it manages access, authentication, and authorization effectively.
One Identity Manager is considered stable and dependable for enterprise identity management with a strong track record of uptime and reliability when implemented correctly.
I would rate it a nine out of ten for stability.
Specifically affecting the test and development environments, not the production environment.
ForgeRock needs to focus on low-code, no-code solutions that allow for drag-and-drop functionality with good orchestration.
It would be better if they were available for support whenever the customer needs it, especially during migration or go-live time periods.
The main area is complexity. ForgeRock is extremely flexible, but the learning curve can be steep.
This lack of 24-hour support is problematic from a testing and development standpoint.
It is crucial for them to expand their support team to match their product's success.
When it comes to privileged access management, we need to know who has access to what, which is the central problem we want to solve.
The pricing, setup cost, and licensing are very straightforward, which is a good success.
One has to spend considerable time trying to understand the different modules and different needs for those modules on the licensing front.
On-premises might incur higher costs.
We have a good enterprise license agreement, and we are very happy with what we get for the price we pay for it.
Many customers find it fair and reasonable for enterprise use, though it can be expensive for smaller organizations due to total licensing and implementation cost.
Centralized management makes the biggest difference because it allows us to define, update, and enforce security and compliance rules from a single location.
ForgeRock positively impacts our organization as we manage a large number of users with ease, providing a standard IAM solution that simplifies our processes.
ForgeRock has positively impacted my organization by allowing us to migrate from the older system to the newer ForgeRock component, enabling us to go live with many products across geographies, enhancing security as it is all cloud-based, and with the company taking care of availability, it has reduced costs for the company.
It ensures high security through multiple approval processes, preventing unauthorized access and enhancing compliance by providing time-based access for privileged accounts with proper audit trails.
It continuously monitors user behavior in real-time, triggering automated responses, and manages secure access for both on-premises and cloud applications using protocols such as SAML.
Once you have some experience, it demonstrates best practices and guides you on the correct way to use the tool.
| Product | Mindshare (%) |
|---|---|
| One Identity Manager | 5.4% |
| ForgeRock | 3.7% |
| Other | 90.9% |

| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 5 |
| Large Enterprise | 18 |
| Company Size | Count |
|---|---|
| Small Business | 47 |
| Midsize Enterprise | 24 |
| Large Enterprise | 103 |
ForgeRock is a comprehensive open-source identity and access management solution designed to meet the unique needs of your users and workforce. With ForgeRock you can orchestrate, manage, and secure the complete lifecycle of identities in any cloud or hybrid environment. ForgeRock allows you to set up bot detection, identity proofing, and risk-based authentication.
With ForgeRock, you can define access policies and automate the management of the identity lifecycle all from a central, easy to use, and graphical dashboard. ForgeRock Access Management allows you to build safe authentication using options like passwordless and usernameless logins, single sign-on, biometrics, contextual analytics, and behavioral authentication. When threats appear, you can swiftly change how your users access your most sensitive applications and provide users with secure access to the applications, systems, and resources they need on demand.
ForgeRock Benefits and Key Features
Reviews from Real Users
ForgeRock stands out among its competitors for a number of reasons. Two major ones are its robust identity and access tools and its being easy to manage and scale with one central dashboard.
PeerSpot users note the effectiveness of these features. A technology solutions leader at an outsourcing company writes, “We need it for multiple clients, multiple implementations. Not all of them are necessarily a multi-tenant solution. We need a very versatile solution that can do a lot of work, but from a single instance that we can centralize authentications and we don't duplicate the efforts and that's where ForgeRock seems to do better.”
Mohamed B., a cyber security consultant at a tech company, writes, "Their access management solution, OpenAM, is most valuable because it meets the needs of a lot of users. ForgeRock secured our system so that it is accessed only by authorized people, and it implemented the SSO."
One Identity Manager is a value-added and trusted active directory management and user provisioning software solution. One Identity Manager administers and protects an organization’s data and users, minimizes threats, and ensures that compliance regulations are consistently satisfied.
Users will have access to the data and applications they need when they need them. One Identity can be used on premises, in the cloud, and also with hybrid options. One Identity Manager is able to easily combine strict governance compliance regulations and rigorous security protocols to keep business enterprises secure and functional today and into the future. One Identity Manager is also a robust, scalable identity governance and administration (IGA) solution. The solution is designed to meet the changing needs of a growing dynamic business enterprise, and not be limited or left vulnerable by IT department constricts.
One Identity consistently provides robust security solutions that facilitate a strong secure enterprise where the users, applications, and critical data are safe and secure. The unified identity security platform provides identity governance and administration (IGA), privileged access management (PAM), active directory management and security (ADMS), and identity and access management (IAM) processes to ensure an aggressive stance on security for today’s dynamic enterprise organizations.
One Identity is used by more than 11,000 organizations worldwide managing over five hundred million plus identities.
One Identity Manager Features
Reviews from Real Users
“The initial setup process for an employee is straightforward. We set up processes for user accounts and we can add other processes to them. Our goal is to automate all user-permission and user-administration processes with One Identity and we are doing that more and more.” - Marc H., IT Architect at a tech services company
“The most valuable features are that it has a lot of capabilities, can integrate with a lot of systems, including automated onboarding like CyberArk, and allows you to integrate different entities.” - Security Consultant at a financial services firm
We monitor all Identity Management (IM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.